frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

TP-Link Tapo C200: Hardcoded Keys, Buffer Overflows and Privacy

https://www.evilsocket.net/2025/12/18/TP-Link-Tapo-C200-Hardcoded-Keys-Buffer-Overflows-and-Privacy-in-the-Era-of-AI-Assisted-Reverse-Engineering/
123•sibellavia•2h ago

Comments

JaggedJax•1h ago
It's probably fair to assume that most of their other camera models are affected by the same or similar issues. It looks like they pump out quite a few models that I image have similar firmware.

This page[1] lists the C200 as last having a firmware update in October, but also lists the latest version as 1.4.4 while the article lists 1.4.2. It seems like they have pushed other updated in this time, but not these security fixes.

[1]https://community.tp-link.com/us/smart-home/kb/detail/412852

sidewndr46•36m ago
I looked at some older Zyxel products and came to the same conclusion a while back. There's a whole industry of labeling generic hardware as being part of someone's else ecosystem

https://www.hydrogen18.com/blog/hacking-zyxel-ip-cameras-pt-...

https://www.hydrogen18.com/blog/hacking-zyxel-ip-cameras-pt-...

tehlike•20m ago
They lend themselves to local connections, however, so they are workable for the tech savvy.

Definitely a problem for regular users.

aaronax•1h ago
This is so bad that it must be intentional, right? Even though these are dirt cheap, they couldn't come up with $100,000 to check for run-of-the-mill vulnerabilities? There must be many millions sold. Quite handy for some intel agencies.

I assume any Wi-Fi camera under $150 has basically the same problems. I guess the only way to run a security camera where you don't have Ethernet is to use a non-proprietary Wi-Fi <-> 1000BASE-T adapter. Probably only something homebuilt based on a single board computer and running basically stock Linux/BSD meets that requirement.

formerly_proven•36m ago
> I assume any Wi-Fi camera has basically the same problems.

ftfy

tehlike•19m ago
Some cameras that "charge" with USB also can use a USB network adapter (provided they can supply power).

For the tech savvy, there is thingino as a firmware alternative - works local only, no cloud, and supports mqtt etc.

fylo•18m ago
Don't put them on untrusted networks. This always seemed obvious to me.
mlaretallack•1h ago
Very interesting, I had a go with Ghidra and AWS Amazon Q, used it to reverse the video feed on a toy drone. I did not think to look for GhidraMCP, would of made it a lot quicker.
shreddit•55m ago
As soon as i read the author used grok as an ai assistant, i was somehow less interested to keep on reading. Not because of the usage of ai, but the chosen provider. (I don’t know whether grok is just the best choice for this kind of work.)

Is it wrong to judge people for their choice of ai providers?

walterbell•51m ago
Which AI providers have access to real-time Twitter data?
2gremlin181•28m ago
Genuinely curious, what are some use cases that you require live Twitter data in your LLM for?
blibble•16m ago
when has anything of value been posted on twitter?
sva_•48m ago
I think when your political views cloud your ability to take in information on an objective level, it might be bad.
wh0thenn0w•47m ago
You can just not like Elon, doesn't have to be political at all.
scotty79•44m ago
It's worth interacting with all models. In my experience, for programming questions grok delivered better answers than ChatGPT (and Claude) often enough that at some point I wasn't sure which model I should be asking first.
isoprophlex•24m ago
I judge people based on what IDE they use. Harshly.

Judging people by the LLM company they keep (for example, using an LLM touted as "anti woke" made by a company headed by a man that some describe as a failed-upwards narcissist nazi anti-trans asshat -- not saying I'm accusing elon of being that, just saying that he's not 100% well-liked) seems pretty milquetoast compared to hating on people who use vscode.

robertpohl•35m ago
If a friend have this camera, shuld he be worried?
sciencejerk•13m ago
Yep
SilverElfin•25m ago
So which camera brand has adequately designed software? It’s hard to know as a consumer what to trust or not trust, because how do you evaluate the quality of their work when the device SEEMS to work as expected? Is Ring the only choice?
notjosh•18m ago
I've installed Thingino on my cameras such as this. Cheap camera + custom (local only!) firmware is a good solution imo.

No guarantee that it'll be perfect either, obviously, but it's open source and actively maintained. Highly recommended.

rao-v•13m ago
I'm a little frustrated with articles like this that scattershot their critique by conflating genuine failures with problems that even FAANGs struggle with.

In particular, I don't love it when an article attacks a best practice as a cheap gotcha:

"and this time it was super easy! After some basic reversing of the Tapo Android app, I found out that TP-Link have their entire firmware repository in an open S3 bucket. No authentication required. So, you can list and download every version of every firmware they’ve ever released for any device they ever produced"

That is a good thing - don't encourage security through obscurity! The impact of an article like this is as likely to get management to prescribe a ham-handed mandate to lock down firmware as it is to get them to properly upgrade their security practices.

tecleandor•4m ago
Yep, I think it should always be that way, firmwares should be always available.
nine_k•10m ago
I more and more tend to not buy any network-connected product if there's no open-source firmware to run on it.

(Phones is one notable exception. I need contactless payments to work.)

mindslight•44s ago
[delayed]
tehlike•6m ago
Thingino supports C200 https://thingino.com/#:~:text=SC3336%2C%20WQ9001%2C%208MB-,T...

You can now play Grand Theft Auto Vice City in the browser

https://dos.zone/grand-theft-auto-vice-city/
103•Alifatisk•1h ago•28 comments

TP-Link Tapo C200: Hardcoded Keys, Buffer Overflows and Privacy

https://www.evilsocket.net/2025/12/18/TP-Link-Tapo-C200-Hardcoded-Keys-Buffer-Overflows-and-Priva...
123•sibellavia•2h ago•24 comments

Garage – An S3 object store so reliable you can run it outside datacenters

https://garagehq.deuxfleurs.fr/
301•ibobev•4h ago•60 comments

Mistral OCR 3

https://mistral.ai/news/mistral-ocr-3
63•pember•1d ago•2 comments

GotaTun -- Mullvad's WireGuard Implementation in Rust

https://mullvad.net/en/blog/announcing-gotatun-the-future-of-wireguard-at-mullvad-vpn
457•km•9h ago•99 comments

Amazon will allow ePub and PDF downloads for DRM-free eBooks

https://www.kdpcommunity.com/s/article/New-eBook-Download-Options-for-Readers-Coming-in-2026?lang...
436•captn3m0•10h ago•237 comments

Vm.overcommit_memory=2 is always the right setting for servers

https://ariadne.space/2025/12/16/vmovercommitmemory-is-always-the-right.html
23•signa11•2d ago•21 comments

Show HN: Stickerbox, a kid-safe, AI-powered voice to sticker printer

https://stickerbox.com/
10•spydertennis•49m ago•7 comments

The FreeBSD Foundation's Laptop Support and Usability Project

https://github.com/FreeBSDFoundation/proj-laptop
102•mikece•5h ago•40 comments

Believe the Checkbook

https://robertgreiner.com/believe-the-checkbook/
72•rg81•4h ago•30 comments

Where Is GPT in the Chomsky Hierarchy?

https://fi-le.net/chomsky/
38•fi-le•4d ago•30 comments

Performance Hints – Jeff Dean and Sanjay Ghemawat

https://abseil.io/fast/hints.html
13•alphabetting•1h ago•0 comments

Reverse Engineering US Airline's PNR System and Accessing All Reservations

https://alexschapiro.com/security/vulnerability/2025/11/20/avelo-airline-reservation-api-vulnerab...
51•bearsyankees•2h ago•23 comments

8-bit Boléro

https://linusakesson.net/music/bolero/index.php
14•Aissen•8h ago•2 comments

Graphite Is Joining Cursor

https://cursor.com/blog/graphite
90•fosterfriends•4h ago•130 comments

Detailed balance in large language model-driven agents

https://arxiv.org/abs/2512.10047
5•Anon84•3d ago•0 comments

Rust's Block Pattern

https://notgull.net/block-pattern/
28•zdw•15h ago•5 comments

Lite^3, a JSON-compatible zero-copy serialization format

https://github.com/fastserial/lite3
83•cryptonector•6d ago•27 comments

NOAA deploys new generation of AI-driven global weather models

https://www.noaa.gov/news-release/noaa-deploys-new-generation-of-ai-driven-global-weather-models
14•hnburnsy•1d ago•0 comments

Show HN: TinyPDF – 3kb pdf library (70x smaller than jsPDF)

https://github.com/Lulzx/tinypdf
19•lulzx•1d ago•3 comments

Show HN: MCPShark Viewer (VS Code/Cursor extension)- view MCP traffic in-editor

19•mywork-dev•2d ago•0 comments

Show HN: I Made Loom for Mobile

https://demoscope.app
37•admtal•3h ago•27 comments

Prepare for That Stupid World

https://ploum.net/2025-12-19-prepare-for-that-world.html
120•speckx•3h ago•69 comments

We pwned X, Vercel, Cursor, and Discord through a supply-chain attack

https://gist.github.com/hackermondev/5e2cdc32849405fff6b46957747a2d28
1077•hackermondev•1d ago•394 comments

Building a Transparent Keyserver

https://words.filippo.io/keyserver-tlog/
42•noident•5h ago•14 comments

Wall Street Ruined the Roomba and Then Blamed Lina Khan

https://www.thebignewsletter.com/p/how-wall-street-ruined-the-roomba
84•connor11528•1h ago•49 comments

Show HN: Stepped Actions – distributed workflow orchestration for Rails

https://github.com/envirobly/stepped
71•klevo•5d ago•10 comments

1.5 TB of VRAM on Mac Studio – RDMA over Thunderbolt 5

https://www.jeffgeerling.com/blog/2025/15-tb-vram-on-mac-studio-rdma-over-thunderbolt-5
565•rbanffy•22h ago•208 comments

Prompt caching for cheaper LLM tokens

https://ngrok.com/blog/prompt-caching/
242•samwho•3d ago•57 comments

History LLMs: Models trained exclusively on pre-1913 texts

https://github.com/DGoettlich/history-llms
706•iamwil•21h ago•346 comments